CVE-2015-1935

HIGH

Description

The scalar-function implementation in IBM DB2 9.7 through FP10, 9.8 through FP5, 10.1 before FP5, and 10.5 through FP5 on Linux, UNIX, and Windows allows remote attackers to cause a denial of service or execute arbitrary code via unspecified vectors.

References

http://www-01.ibm.com/support/docview.wss?uid=swg1IT08543

http://www-01.ibm.com/support/docview.wss?uid=swg1IT08656

http://www-01.ibm.com/support/docview.wss?uid=swg1IT08667

http://www-01.ibm.com/support/docview.wss?uid=swg1IT08668

http://www-01.ibm.com/support/docview.wss?uid=swg21902661

http://www.securityfocus.com/bid/75908

http://www.securitytracker.com/id/1033063

Details

Source: MITRE

Published: 2015-07-20

Updated: 2018-09-26

Type: CWE-17

Risk Information

CVSS v2.0

Base Score: 8

Vector: (AV:N/AC:L/Au:S/C:P/I:P/A:C)

Impact Score: 8.5

Exploitability Score: 8

Severity: HIGH